PaperCut Zero-Day Exploitation Forces Emergency Patch Across NG and MF

TL;DR Summary
PaperCut warns that attackers are actively exploiting a zero-day flaw in all NG and MF versions, prompting an emergency patch for v25/v26 and ongoing investigation; security indicators include suspicious post-exploitation activity (pc-app.exe) and anomalous server.log entries, with guidance to restrict PaperCut access to trusted IPs; no details on the flaw or attackers yet, though a 2023 CVE was previously exploited by known threat actors.
- PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versions The Hacker News
- Unknown PaperCut NG/MF vulnerability is under active attack Help Net Security
- Hackers Actively Exploiting Pre-Auth RCE Flaw in PaperCut Print Software IT Security Guru
- Patch now! Attackers targeting PaperCut NG/MF heise online
- PaperCut Releases Emergency Patch for Exploited Zero-Day SecurityWeek
Reading Insights
Total Reads
1
Unique Readers
2
Time Saved
1 min
vs 2 min read
Condensed
77%
274 → 64 words
Want the full story? Read the original article
Read on The Hacker News